Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilAssociate C|CISO

Domain 5Objective 1

Security Strategic Planning ACCISO Practice Questions (Page 7)

Part of the Strategic Planning, Finance, Procurement, and Vendor Management domain, which makes up ~23% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–18 in this domain), expect 2–3 from this objective — we provide 62 practice questions to prepare you well beyond it. (estimate)

62questions here
13free pages
10concepts

Questions 31–35

  1. 31application · medium

    A CISO wants to measure the effectiveness of the security strategy in reducing the impact of security incidents. Which metric would be most appropriate?

    Select an answer first
  2. 32application · medium

    A regional bank is developing its annual security plan. The board has approved a risk appetite that accepts moderate risk for customer-facing digital services but requires near-zero tolerance for core banking system outages. The CISO must allocate the security budget for the next fiscal year. Which approach best aligns the security strategy with the bank's risk appetite?

    Select an answer first
  3. 33application · medium

    A company's risk assessment identified two major risks: ransomware affecting production systems and insider threat from privileged users. The CISO must develop a security strategy with limited budget. Which approach best integrates risk management into the strategy?

    Select an answer first
  4. 34application · medium

    A startup is creating its first security strategic plan. The founders want the plan to support rapid growth and innovation while protecting intellectual property. They have limited resources and no dedicated security team. Which first step should the CISO take?

    Select an answer first
  5. 35expert · hard

    A company has a security budget of $500,000. The risk assessment identifies three risks: a high-likelihood, low-impact risk (A), a medium-likelihood, medium-impact risk (B), and a low-likelihood, high-impact risk (C). The CISO must allocate the budget. Which allocation best reflects strategic prioritization?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ACCISO” is a trademark of its owner, used for identification only.